Lead the data masking and encryption project from a technical perspective, collaborating closely with Architecture, Infrastructure, and Development teams.
Define and validate strategies and implementation standards for masking (static, dynamic) and encryption (at rest, in transit) and tokenization.
Support the mapping of sensitive data (PII, PCI) and assess technical risks related to its use and storage.
Ensure compliance with LGPD, PCI DSS, ISO 27001, and NIST throughout the data lifecycle.
Document solutions and support the technical training of the teams involved.
Serve as a facilitator for communications among the involved areas.
Prepare status reports and executive presentations on the project.
Develop policies and procedures related to data masking.
Requirements
Strong experience (minimum 5 years) in information security.
Practical experience with data masking, data encryption, tokenization, and HSMs.
Knowledge of PCI DSS, LGPD, and NIST CSF.
Mastery of DevSecOps best practices.
Experience with the Thalles masking and encryption tool will be a plus.
Proven ability to lead complex projects and POCs.
Strategic mindset with a focus on security by design.
Excellent communication and influencing skills with both business and technology stakeholders.
Proactive, critical thinker with a collaborative attitude.
Commitment to meeting deadlines and delivering high-quality results.
Benefits
🏥 Porto Seguro Medical Plan
🦷 Porto Seguro Dental Plan
💰 Profit Sharing (PLR)
👶 Childcare Assistance
🍽️ Alelo Meal and Food Vouchers
💻 Home Office Allowance
📚 Partnerships with Educational Institutions
🚀 Support for Certifications, including Cloud
🎁 Livelo Points
🏋️♂️ TotalPass
🧘♂️ Mindself
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard skills
data maskingdata encryptiontokenizationHSMsDevSecOpsinformation securitytechnical risk assessmentpolicies and procedures developmentstrategies and implementation standardssensitive data mapping